| Description | This article describes how to troubleshoot the issue with no IP lease when connecting to a tunnel SSID with an optional VLAN ID configured. |
| Scope | FortiGate and FortiAP. |
| Solution |
On FortiGate, a tunnel SSID is configured to lease out DHCP.
From the 'Wi-Fi Clients' monitor, the device can be seen to be connected but there is no IP is leased out. 12901.345 ee:b1:82:63:8c:36 cwAcStaRbtAdd: I2C_STA_ADD insert sta ee:b1:82:63:8c:36 192.168.98.2/1/1/1 This indicates that authentication is completed but there is no DHCP response to the DHCP discover from client. Checking the SSID config shows that the 'optional VLAN ID' is set to 5 instead of 0 by default. 13393.924 ee:b1:82:63:8c:36 cwAcStaRbtAdd: I2C_STA_ADD insert sta ee:b1:82:63:8c:36 192.168.98.2/1/1/1 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.